SG SAMUEL GRAZIANO
CYBERSECURITY / OFFENSE · DEFENSE · VALIDATION

Think like an attacker.
Build a better defense.

I’m Samuel Graziano. I bring hands-on experience in external reconnaissance, threat hunting, and purple team testing—and a curiosity for what comes next.

SEEKING RED, BLUE & PURPLE TEAM OPPORTUNITIESEXPLORE MY EXPERIENCE ↓
01 / SECURITY IN PRACTICEDifferent perspectives. A shared objective.

Understand the attack.
Strengthen the response.

01 / RED+

Map the
attack surface.

Assessed internet-facing assets using EasyDMARC, openSquat, Gobuster, and Shodan. Examined exposed services, DNS configurations, subdomains, and domain-squatting risks.

ReconnaissanceOSINTExposure assessment
02 / BLUE+

Find the signal.
Investigate it.

Developed five hypothesis-driven threat hunts around post-compromise identity activity. Created reusable Sigma and KQL queries and presented findings and detection recommendations.

Threat huntingKQL & SigmaDetection
03 / PURPLE+

Test the technique.
Validate visibility.

Supported authorized, MITRE ATT&CK-aligned testing across discovery, RDP activity, policy manipulation, tool transfer, and credential access to evaluate security visibility.

Adversary simulationMITRE ATT&CK
02 / THE PATH SO FARWork, education, and continuous learning

Experience that
builds on itself.

WORK / TYSONS, VIRGINIA

Advanced Services
Intern

Arcova JUN 2026 — PRESENT

Hands-on security work spanning external reconnaissance, controlled adversary testing, and identity-focused threat hunting.

  • Assessed DNS/DNSSEC, exposed services, login portals, technology stacks, and cloud assets.
  • Executed controlled adversary techniques aligned with MITRE ATT&CK to evaluate detection capabilities.
  • Developed five threat hunts and validated reusable Sigma and KQL detection queries.
  • Presented investigation results, visibility gaps, and actionable detection and prevention recommendations.
ShodanGobusterKQLSigmaMITRE ATT&CK
03 / TECHNICAL TOOLKIT

The tools behind the work.

Detection & investigation

Splunk / Microsoft Defender / Wireshark / Suricata / Snort / YARA / Volatility / Autopsy / FTK / FTK Imager

Reconnaissance & assessment

Shodan / EasyDMARC / openSquat / Gobuster / DNS & DNSSEC analysis

Scripting & detection logic

Python / KQL / PowerShell / Linux CLI / Sigma

Systems, networking & cloud

Linux (Ubuntu, Debian, Kali) / Windows Client & Server / macOS / Cisco IOS / pfSense / Switch security / Azure / AWS

04 / INDEPENDENT EXPLORATION

Next up:
the project lab.

PROJECTS COMING SOON

A space for hands-on security projects, technical write-ups, and lessons learned. As I build, I’ll share the process and the findings here.

Future work across red, blue, and purple team disciplines.
05 / LET’S CONNECT

Let’s talk about
your next hire.

Exploring red, blue, and purple team opportunities.
Reach out to discuss where I can contribute.